{"$schema":"https://wellknown.network/schemas/agent-record-v1.json","schemaVersion":"1","id":"ag_2mr48aawnbmn","handle":"nittim","url":"https://wellknown.network/agents/nittim","links":{"self":"https://wellknown.network/agents/nittim/record.json","html":"https://wellknown.network/agents/nittim","markdown":"https://wellknown.network/agents/nittim/record.md","api":"https://wellknown.network/api/v1/agents/nittim","status":"https://wellknown.network/api/v1/agents/nittim/status","claim":"https://wellknown.network/agents/nittim/claim","claimApi":"https://wellknown.network/api/v1/claims","claimDescriptor":"https://wellknown.network/agents/nittim/claim.json","badge":"https://wellknown.network/agents/nittim/badge.svg","openapi":"https://wellknown.network/openapi.json","history":"https://wellknown.network/api/v1/agents/nittim/history","tools":"https://wellknown.network/api/v1/agents/nittim/tools"},"ard":{"identifier":"urn:air:nittim.com:server:nittim","type":"application/mcp-server-card+json"},"kind":"mcp_server","declared":{"name":"nittim","summary":"Production-safety audits for AI-generated code, with a fix for every finding.","description":"Production-safety audits for AI-generated code, with a fix for every finding.","publisher":{"name":"com.nittim","url":null},"homepage":"https://nittim.com","repository":"https://github.com/ilanwolberger/nittim-mcp","version":"1.1.0","license":null,"protocols":["mcp"],"tags":[],"pricing":null,"endpoints":[{"url":"https://nittim.com/api/mcp","type":"mcp_streamable_http","auth":null,"probeable":true}],"skills":null,"tools":null,"extra":{"updatedAt":"2026-09-08T06:45:36.855885Z","publishedAt":"2026-09-08T06:45:36.855885Z","registryName":"com.nittim/nittim"},"attribution":{"kind":"mcp_registry","name":"mcp_registry","repoUrl":"mcp_registry","summary":"mcp_registry","version":"mcp_registry","description":"mcp_registry","homepageUrl":"mcp_registry","publisherName":"mcp_registry"}},"derived":{"capabilities":[{"slug":"dev.version-control","name":"Version Control","confidence":1,"provenance":"derived"},{"slug":"commerce.pricing","name":"Pricing & Quotes","confidence":1,"provenance":"derived"},{"slug":"security.scanning","name":"Security Scanning","confidence":0.51,"provenance":"derived"},{"slug":"security.secrets","name":"Secrets Management","confidence":0.51,"provenance":"derived"}],"categories":["commerce","dev","security"],"language":"en"},"observed":{"status":"recently_observed","statusReason":"Responded 26h ago; 2 recent checks failed (latest 9h ago).","lastOkAt":"2026-10-09T03:23:59.271Z","lastProbedAt":"2026-10-09T20:31:41.543Z","statusComputedAt":"2026-10-09T20:32:13.993Z","reliability30d":{"probes":108,"successRate":0.9815,"p50Ms":171,"basis":"service","measures":{"availability":"availability","latency":"response time","tools":"tool surface observed","summary":"Checks reached the service itself."},"checks":{"total":107,"ok":105,"authBoundaryOk":0,"serviceOk":105,"note":"Counted from the observation rows for the window, checks of the server only (HTTP, A2A card, MCP initialize). ok = authBoundaryOk + serviceOk. `probes` is the sum of daily rollups and includes registry checks, so it can differ from `total`."}},"latestObservations":[{"at":"2026-10-09T20:31:41.543Z","kind":"http_head","ok":false,"httpStatus":null,"latencyMs":null,"error":"disallowed by robots.txt","detail":null},{"at":"2026-10-09T09:26:59.582Z","kind":"http_head","ok":false,"httpStatus":null,"latencyMs":null,"error":"disallowed by robots.txt","detail":null},{"at":"2026-10-09T03:23:59.271Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":153,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T21:22:59.375Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":191,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T15:24:19.170Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":216,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T08:29:05.950Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":194,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T02:22:32.392Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":182,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}},{"at":"2026-10-07T20:29:53.088Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":281,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}},{"at":"2026-10-07T13:27:26.459Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":258,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}},{"at":"2026-10-07T07:28:12.590Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":155,"error":null,"detail":{"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"toolCount":15,"toolsHash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","serverName":"nittim","capabilities":["tools","prompts"],"serverVersion":"0.2.0+6125d24","protocolVersion":"2025-06-18"}}],"tools":[{"name":"audit_repo","description":"Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers w"},{"name":"audit_source","description":"Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's o"},{"name":"scan_source","description":"Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a pr"},{"name":"estimate_audit","description":"Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Au"},{"name":"get_audit","description":"Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing cha"},{"name":"verify_fix","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the ca"},{"name":"list_modules","description":"List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module"},{"name":"get_loop","description":"Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase "},{"name":"describe_protocol","description":"How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Fr"},{"name":"mint_key","description":"For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key"},{"name":"run_module","description":"Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return"},{"name":"judge_output","description":"Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, ne"},{"name":"dispute_finding","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), ba"},{"name":"report_loop","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a fi"},{"name":"preview_upload","description":"NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get ba"}],"package":null,"toolSurface":{"id":"ts_62yefpmb6wyc","endpointId":"ep_fykcp65ffer3","hash":"7befbc867b7397d3896b6e90071aa503bca114d0e8a17b517420a050afc1e795","toolCount":15,"serverName":"nittim","serverVersion":"0.2.0+1e40a13","protocolVersion":"2025-06-18","firstSeenAt":"2026-09-26T12:26:59.912Z","lastSeenAt":"2026-10-09T03:23:59.282Z","observations":48,"toolNames":["audit_repo","audit_source","scan_source","estimate_audit","get_audit","verify_fix","list_modules","get_loop","describe_protocol","mint_key","run_module","judge_output","dispute_finding","report_loop","preview_upload"],"distinctSurfaces":2},"endpointFacts":[{"id":"ep_fykcp65ffer3","url":"https://nittim.com/api/mcp","type":"mcp_streamable_http","factsCheckedAt":"2026-10-05T17:25:27.050Z","auth":{"observedAt":"2026-10-05T17:25:27.578Z","authRequired":false,"scheme":null,"resourceMetadata":{"url":"https://nittim.com/.well-known/oauth-protected-resource/api/mcp","resource":"https://nittim.com/api/mcp","authorizationServers":["https://xsmbdmgcuhpxzfrzdiwv.supabase.co/auth/v1"],"scopesSupported":["openid","email","offline_access"]},"authorizationServer":{"url":"https://xsmbdmgcuhpxzfrzdiwv.supabase.co/.well-known/oauth-authorization-server/auth/v1","issuer":"https://xsmbdmgcuhpxzfrzdiwv.supabase.co/auth/v1","grantTypesSupported":["authorization_code","refresh_token"],"codeChallengeMethodsSupported":["S256","plain"],"tokenEndpointAuthMethodsSupported":["client_secret_basic","client_secret_post","none"],"dynamicClientRegistration":true,"dpopSigningAlgValuesSupported":[],"clientIdMetadataDocumentSupported":null},"conformance":{"dpop":false,"rfc8414":true,"rfc9728":true,"pkceS256":true,"clientIdMetadataDocument":false,"dynamicClientRegistration":true}},"tls":{"observedAt":"2026-10-05T17:25:27.609Z","protocol":"TLSv1.3","chainValid":true,"chainError":null,"hostMatches":true,"subject":"nittim.com","issuer":{"commonName":"YR1","organization":"Let's Encrypt"},"validFrom":"2026-08-11T07:39:06.000Z","validTo":"2026-11-09T07:39:05.000Z","daysToExpiry":30,"sanCount":1,"fingerprint256":"F0:5A:1C:45:3E:D6:33:0D:C1:51:93:F5:97:E1:1A:A5:A4:4B:65:1E:A7:4F:15:C1:E1:86:E5:DB:5B:3F:72:7B"}}]},"verification":{"claimed":false,"claimedAt":null,"proofs":[]},"provenance":{"sources":[{"source":"mcp_registry","key":"com.nittim/nittim","url":"https://registry.modelcontextprotocol.io/v0/servers/com.nittim%2Fnittim","firstSeenAt":"2026-09-09T18:18:30.101Z","fetchedAt":"2026-10-09T09:23:00.787Z","normalizedAt":"2026-10-09T09:23:00.787Z"}]},"firstSeenAt":"2026-09-09T18:18:30.101Z","updatedAt":"2026-10-09T03:25:57.306Z"}